Security | Threat Detection | Cyberattacks | DevSecOps | Compliance

Securing Digital Identities Against Emerging Cyber Threats

As more of our lives move online, from banking and shopping to using government services, our digital identity has become incredibly valuable. Protecting it isn't just about using a strong password anymore. Cybercriminals are using more advanced tactics, which means security measures constantly need to evolve to keep up. This includes developing better threat detection systems, using multi-factor authentication, and adding subtle protections like browser checking to confirm who a user is.

AI-Generated Phishing Achieves a 54% Click Rate

For years, phishing has worked for one simple reason: it exploits the weakest link, the user. The defensive strategy has followed the same formula: better email filtering, more user awareness, and an extra layer of authentication. It wasn't perfect, but it was a workable balance.

New Phishing Tools Enable Attackers to Easily Bypass Multifactor Authentication

Researchers at ReliaQuest are tracking two new phishing toolkits that are designed to bypass multifactor authentication (MFA). The first tool, called “Jalisco,” is a device code phishing platform that pairs with AI-powered phishing-as-a-service platforms like EvilTokens to provide fresh OAuth codes in real time.

From Inbox to Encryption: How Ransomware Delivery Has Evolved

Ransomware and phishing have always been linked, but the old model was blunt: a phishing email carried the payload, the recipient opened it, encryption followed within hours. What the threat looks like in 2026 is fundamentally different. The email that starts the chain carries nothing dangerous. Instead, the ransomware arrives weeks later, launched by a completely different attacker. So, what can organizations do to protect themselves from these new threats?

How to Convert OST To PST When The Outlook Profile Is Deleted

Outlook profiles are extremely important part of Outlook. It not only contains the account configuration but also mailbox settings. Also, it includes the data file associations required for mailbox content access. Now the question arises what if something went wrong with this Outlook profile? What if the profile is deleted? In such a scenario, Outlook loses its connection to the associated OST file. It means OST file can become orphaned. In such a case, users are unable to access the mailbox folders. What's next? The solution is to convert this encrypted OST to any portable data file format like PST.

From E-Sign to RMM: DocuSign Kit Targets Windows and macOS

BlueVoyant SOC (Security Operations Center) and Threat Fusion Cell (TFC) teams are tracking a long-running phishing and remote access campaign that uses DocuSign/e-sign themed lures and a reusable web kit to drive victims into installing legitimate remote access tooling.

Trust, Verify, Protect: Modernizing Email Security for the Cloud

Picture this: Your company just fell victim to a massive data breach. The culprit wasn't a sophisticated malware strain, a zero-day exploit, or a compromised firewall. It was a perfectly legitimate-looking login from a VP’s account, originating from an unrecognized IP address, requesting an urgent wire transfer via a spotless, text-only email. In the modern threat landscape, attackers have realized something crucial: Why break in when you can just log in?

Sophos named a 2026 Gartner Peer Insights Customers' Choice for Email Security

Sophos named a 2026 Gartner Peer Insights Customers’ Choice for Email Security Sophos’ first ever recognition as a Customers’ Choice for Email Security. Sophos has been named a 2026 Gartner Peer Insights Customers’ Choice in the 2026 Gartner Peer Insights Voice of the Customer for Email Security. This marks Sophos’ entry into the report, as well as Sophos’ first ever Customers’ Choice distinction for Email Security.

Threat Actor Uses Phishing to Breach Orgs for Ransomware Gangs

An initial access broker associated with the Payouts King ransomware group is using Microsoft Teams phishing to deploy a malicious Microsoft Edge web browser extension, according to researchers at Zscaler. Once the hackers have a foothold within an organization, they sell the access to the ransomware gang to conduct follow-on attacks.